# CVE-2023-4695

## Summary

- **CVE ID:** CVE-2023-4695
- **Severity:** CRITICAL
- **CVSS Score:** 9.6 (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N)
- **CWE:** CWE-1241
- **Published:** Sep 1, 2023
- **Last Modified:** Mar 13, 2026

## Description

Use of Predictable Algorithm in Random Number Generator in GitHub repository pkp/pkp-lib prior to 3.3.0-16.

## Affected Products

- pkp — pkp/pkp-lib (unspecified)

## References

- [CNA](https://huntr.dev/bounties/887c7fc7-70c8-482d-b570-350533af4702)
- [CNA](https://github.com/pkp/pkp-lib/commit/e5e7e543887fe77708aa31e07b18fe85f9b5a3b5)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.09%
- **EPSS Percentile:** 25.6

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-11._